Potential false positives?

Hi

I'm running the latest version of ADW cleaner and got this back as my report.

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

PUP.Optional.CrossRider, C:/Users\Gamefan\AppData\Roaming\app

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

...

False positives?

Are these keys FPs? Could someone verify this? Thank you.

# AdwCleaner 7.0.0.0 - Logfile created on Sun Jul 23 10:21:28 2017 # Updated on 2017/17/07 by Malwarebytes # Database: 07-16-2017.1 # Running on Windows 7 Home Premium (X86) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders...

Many Bugs 7.0.1.0

Hello, firstly, thanks for this amazing tool

 

I can't see the Quarantine items (file(s)/folder(s)/registry etc..)

 

I  see that message(every scan)

2017-07-22 21:35:20.459 DEBUG [4180] [MainUI::buttonScanClicked@292] [i] Scan button clicked (-31986)
2017-07-22 21:35:20.463 DEBUG [2356] [MainUI::Entry@1241] [+] Checking for update...
2017-07-22 21:35:21.399 DEBUG [2356] [AdwCleanerSDK...

Re: vers 7.0

last one second before now scan:

# AdwCleaner 7.0.0.0 - Logfile created on Sat Jul 22 13:52:03 2017 # Updated on 2017/17/07 by Malwarebytes # Running on Windows 10 Home (X64) # Mode: clean # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services deleted.

***** [ Folders ] *****

Deleted: C:\Users\Luca\AppData\Roaming\.acestream

***** [ Files ] *****

N...

Re: Version 7 FPs (262 elements)

I have no proxies on either machine.

Just updated and ran scan - still same result as yesterday as below - 280 entires found!

The Chrome entries found are simply my personalisations for the Chrome start up page! Should definately not be selected or cleaned!

# AdwCleaner 7.0.0.0 - Logfile created on Fri Jul 21 08:26:44 2017 # Updated on 2017/17/07 by Malwarebytes # Database: 07-16-2017.1 # Ru...

Re: PUP.Legacy.Optional - 3 Threats Identified

Hello,

It's not a browser hijack, it's the search-engine setting that AdwCleaner set after removing a malicious one. This will be back to google.com by default, with a dropdown in the Options UI to choose between seevral search engines.

Just to be sure, you say that Duckduckgo has been set even if you didn't get any Chrome or Firefox detections?

Re: Version 7 FPs (262 elements)

Just 1 entry this time after updating.

# AdwCleaner 7.0.0.0 - Logfile created on Fri Jul 21 15:44:03 2017 # Updated on 2017/17/07 by Malwarebytes # Database: 07-21-2017.1 # Running on Windows 7 Ultimate (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ]...

Re: Version 7 FPs (262 elements)

sure, these are immunization entries detected from SpywareBlaster by AdwCleaner.

# AdwCleaner 7.0.0.0 - Logfile created on Fri Jul 21 15:18:41 2017 # Updated on 2017/17/07 by Malwarebytes # Database: 07-16-2017.1 # Running on Windows 7 Ultimate (X64) # Mode: scan # Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No...

Re: PUP.Legacy.Optional - 3 Threats Identified

Looks like safe with nw did the trick. Same two elements were identified, but this time the removal process included a step "cleaning chrome", which definitely wasn't in any of the other scans. When I restarted in regular mode and ran another scan with v7, there were "no unwanted objects found". Super psyched!!

Below are two log files -- first is the one generated after removal of two unwanted...

Re: PUP.Legacy.Optional - 3 Threats Identified

Could be that you are a victim of bundleware. Basically, alongside normal maybe even useful software, some providers bundle malicious or useless software just to increase downloads and such. Have you downloading anything from 3rd party providers and not official sources?. Regardless of the fact, Malwarebytes or ADWCleaner should have picked it up and removed it, it could be much more thorough. ...